GSA / DevSecOpsLinks
Base infrastructure for future DevSecOps environment in AWS
☆25Updated 4 years ago
Alternatives and similar repositories for DevSecOps
Users that are interested in DevSecOps are comparing it to the libraries listed below
Sorting:
- This CloudWatch Events rule Lambda function evaluates AWS API calls that change Amazon EC2 security group ingress rules. The function fla…☆25Updated 5 years ago
- Dump your EC2 Security Groups as a CSV or JSON file☆71Updated 2 years ago
- (WIP) A terraform / kitchen-terraform hardening baseline for the cis-aws-foundations-baseline☆24Updated 3 years ago
- An SSH certificate authority framework to sign SSH pubkey requests based on SAML assertions☆28Updated 4 years ago
- Controls for Amazon Web Services☆26Updated 5 years ago
- GSA Security Benchmarks and Tools☆21Updated 6 years ago
- Docker Enterprise Edition Security Controls for Compliance☆66Updated 2 years ago
- Toolkit for getting open source apps ready for secure, approved government use☆102Updated 3 years ago
- Configurtion for a hardened CentOS 7 AMI built using Packer☆20Updated 6 years ago
- Terraform to configure an AWS account for the storage of many separate CloudTrails in S3☆14Updated 7 years ago
- Python scripts to run in AWS Lambda to process findings from Amazon Inspector☆39Updated 7 years ago
- Awsaml is an application for providing automatically rotated temporary AWS credentials.☆142Updated 3 weeks ago
- Lambda job in Python to automatically deploy Inspector agent to newly-launched EC2 instances☆29Updated 7 years ago
- Marking instances dirty since 2018☆47Updated 6 years ago
- Example implementation of the GSA DevSecOps Pipeline☆38Updated 7 years ago
- Building Operational Visibility Into (n) Environments☆69Updated 7 years ago
- Framework for reviewing and responding to events in AWS Flow Logs using Lambda Function☆46Updated 2 months ago
- Creates a CloudFormation stack for running Security Monkey☆27Updated 6 years ago
- [WORK IN PROGRESS] A repo containing rule sets for cloud-custodian inside GSA AWS accounts. This repo does not contain cloud-custodian it…☆30Updated 7 years ago
- STIG-Partitioned Enterprise Linux (spel)☆102Updated last week
- A simple example of Pipeline-as-code with Jenkins and Terraform☆15Updated 8 years ago
- Radar provides for early checks and review for software defined templates.☆18Updated 9 years ago
- A continuous security pipeline demo for the AWS DevSecOps Workshop.☆45Updated 5 years ago
- It tells you when you VPN☆14Updated 2 years ago
- Cloud multi-account metadata management tool.☆91Updated 4 years ago
- Public tables and other research that can accept PRs. Please visit the web link.☆44Updated 6 years ago
- ☆77Updated 4 years ago
- Make a network graph of an AWS region☆86Updated 6 years ago
- [DEPRECATED] A quickstart demo for Kolide tools☆52Updated 7 years ago
- DevSec Linux Patch Baseline - InSpec Profile☆83Updated last year